514 - Pentesting Rsh

Tip

AWS ํ•ดํ‚น ๋ฐฐ์šฐ๊ธฐ ๋ฐ ์—ฐ์Šตํ•˜๊ธฐ:HackTricks Training AWS Red Team Expert (ARTE)
GCP ํ•ดํ‚น ๋ฐฐ์šฐ๊ธฐ ๋ฐ ์—ฐ์Šตํ•˜๊ธฐ: HackTricks Training GCP Red Team Expert (GRTE) Azure ํ•ดํ‚น ๋ฐฐ์šฐ๊ธฐ ๋ฐ ์—ฐ์Šตํ•˜๊ธฐ: HackTricks Training Azure Red Team Expert (AzRTE)

HackTricks ์ง€์›ํ•˜๊ธฐ

๊ธฐ๋ณธ ์ •๋ณด

์ธ์ฆ์„ ์œ„ํ•ด .rhosts ํŒŒ์ผ๊ณผ /etc/hosts.equiv๊ฐ€ Rsh์— ์˜ํ•ด ์‚ฌ์šฉ๋˜์—ˆ์Šต๋‹ˆ๋‹ค. ์ธ์ฆ์€ IP ์ฃผ์†Œ์™€ ๋„๋ฉ”์ธ ๋„ค์ž„ ์‹œ์Šคํ…œ(DNS)์— ์˜์กดํ–ˆ์Šต๋‹ˆ๋‹ค. ํŠนํžˆ ๋กœ์ปฌ ๋„คํŠธ์›Œํฌ์—์„œ IP ์ฃผ์†Œ๋ฅผ ์Šคํ‘ธํ•‘ํ•˜๋Š” ๊ฒƒ์ด ์šฉ์ดํ•˜๋‹ค๋Š” ์ ์€ ์ค‘์š”ํ•œ ์ทจ์•ฝ์ ์ด์—ˆ์Šต๋‹ˆ๋‹ค.

๋˜ํ•œ, .rhosts ํŒŒ์ผ์ด ์‚ฌ์šฉ์ž ํ™ˆ ๋””๋ ‰ํ† ๋ฆฌ์— ์œ„์น˜ํ•˜๋Š” ๊ฒƒ์ด ์ผ๋ฐ˜์ ์ด์—ˆ์œผ๋ฉฐ, ์ด ๋””๋ ‰ํ† ๋ฆฌ๋Š” ์ข…์ข… ๋„คํŠธ์›Œํฌ ํŒŒ์ผ ์‹œ์Šคํ…œ(NFS) ๋ณผ๋ฅจ์— ์œ„์น˜ํ–ˆ์Šต๋‹ˆ๋‹ค.

๊ธฐ๋ณธ ํฌํŠธ: 514

๋กœ๊ทธ์ธ

rsh <IP> <Command>
rsh <IP> -l domain\user <Command>
rsh domain/user@<IP> <Command>
rsh domain\\user@<IP> <Command>

๋ฌด์ฐจ๋ณ„ ๋Œ€์ž… ๊ณต๊ฒฉ

์ฐธ๊ณ  ๋ฌธํ—Œ

Tip

AWS ํ•ดํ‚น ๋ฐฐ์šฐ๊ธฐ ๋ฐ ์—ฐ์Šตํ•˜๊ธฐ:HackTricks Training AWS Red Team Expert (ARTE)
GCP ํ•ดํ‚น ๋ฐฐ์šฐ๊ธฐ ๋ฐ ์—ฐ์Šตํ•˜๊ธฐ: HackTricks Training GCP Red Team Expert (GRTE) Azure ํ•ดํ‚น ๋ฐฐ์šฐ๊ธฐ ๋ฐ ์—ฐ์Šตํ•˜๊ธฐ: HackTricks Training Azure Red Team Expert (AzRTE)

HackTricks ์ง€์›ํ•˜๊ธฐ